Effective Date: April 13, 2026
Platform: AbilGulal (Operated by Shweta Technologies LLP)
1. Introduction and Scope
Welcome to AbilGulal ("we", "our", or "us"). We are deeply committed to protecting your personal information and respecting your right to privacy as mandated by the Information Technology Act, 2000 and the Information Technology (Reasonable Security Practices and Procedures and Sensitive Personal Data or Information) Rules, 2011. This comprehensive Privacy Policy governs the manner in which AbilGulal categorically collects, systematically uses, robustly maintains, protects, and discloses information collected from users (each, a "User") of our web application, mobile platform, and related integrations.
By accessing or using the platform, you specifically consent to the rigorous collection, processing, and storage of your data as outlined in this policy. If you vehemently disagree with any part of this privacy document, you must immediately discontinue your use of the platform and our services.
2. Categorical Information We Collect
We systematically collect information that you voluntarily provide to us when registering on the platform, expressing an interest in our spiritual products and services, engaging in financial transactions, or communicating with our support infrastructures.
- Personally Identifiable Information (PII): Full Name, verified email address, active mobile phone number, date of birth, gender, gotra (clan identity), language preferences, and profile photographs. We do not knowingly solicit or collect personal information from individuals strictly under the age of 18 without verified parental consent mechanisms.
- Geospatial & Logistical Data: Exhaustive delivery addresses for the E-Puja marketplace, residential coordinates for home pujas, and real-time location telemetry strictly required for pairing you accurately with geographically proximate Pandits/Vendors.
- Financial transactional Data: While financial transactions are handled securely by our PCI-DSS compliant third-party payment gateways (e.g., Razorpay, Stripe, CCAvenue), we retain structural records of the transaction IDs, payment statuses, and invoice ledgers. We NEVER store, process, or maintain sensitive credit card, debit card CVVs, or core banking passwords on our internal database clusters.
- Automated Usage Data & Device Telemetry: Anonymized IP addresses, browser variants and versions, operating system kernels, distinct device UDID/MAC identifiers, time-of-day analytics, and dynamic interaction metrics across our domains (collected automatically via advanced cookies, web beacons, and similar standard tracking technologies).
3. Structural Usage of Your Data
We architecturally utilize the collected information strictly for transparent, legal, and legitimate business purposes corresponding to the following critical functions:
- Account Management: To meticulously facilitate seamless account creation, robust multi-factor authentication, secure login processes, and comprehensive profile governance.
- Service Fulfillment: To effectively fulfill, procedurally process, and meticulously manage your intricate service bookings, Pandit matching algorithms, and E-Puja store ecommerce deliverables.
- Financial Integrity: To seamlessly process complex payments, algorithmically calculate valid refunds, aggressively mitigate fraud risk via machine learning anomaly detection, and transparently handle wallet transactions.
- Communication Protocols: To dispatch imperative administrative information, terms of service updates, critical security alerts, and real-time service-related notifications (via WhatsApp, SMS, and Email).
- System Optimization: To monitor platform performance natively, conduct server resource planning, analyze deep engagement trends, and systematically personalize your user interface experience based on historical preferences.
4. Third-Party Sharing and Disclosure
We fundamentally treat your privacy as an unalienable right. We unequivocally do not sell your personal data to data brokers. We uniquely share specific data fields under stringent conditions:
- Verified Service Providers (Pandits): We transmit strictly necessary baseline details (name, exact residential address, operational contact number, and specific astrological/gotra requirements) to the categorically assigned Pandit to ensure the religious ritual is adequately prepared and performed with theological accuracy.
- Infrastructure Subprocessors: We share pseudonymized, hashed, or imperative raw data with heavily vetted third-party vendors, cloud contractors, or infrastructure agents who perform core services for us (e.g., AWS/Hostinger for sovereign data hosting, Razorpay for payment orchestration, Google Maps API for geolocation routing).
- Mandated Legal Obligations: We may aggressively disclose your categorical data if legally mandated in order to comply faithfully with applicable Indian or international law, substantive governmental law enforcement requests, a judicial proceeding, active court order, or formal subpoena. We may also proactively share data to investigate potential civil fraud, severe terms violations, or imminent threats to physical safety.
5. Data Retention lifecycles
We strictly retain your personal information only for the duration unequivocally necessary to fulfill the purposes rigorously outlined in this Privacy Policy. Upon formal request for account deletion, or upon prolonged period of inactivity (typically exceeding 36 months), we systematically purge or irreversibly anonymize your identifiable data, barring any mandatory regulatory retention obligations enforced by tax, accounting, or criminal investigation legislations which may compel archival storage for up to 7-10 years.
6. Advanced Security Protocols
We implement an extensive variety of organizational, structural, and technical security measures. These include AES-256 HTTPS encryption for data in transit, robust application firewalls, restrictive role-based access controls (RBAC) for our employees, and secure server hosting environments, to holistically maintain the safety of your personal information. However, users must formally acknowledge that no electronic transmission over the public internet or structural information storage technology can ever be mathematically guaranteed to be 100% impenetrable against highly sophisticated state-sponsored or zero-day cyber attacks.
7. User Rights and Jurisdictional Choices
You possess sweeping rights over your digital footprint on our platform:
- Right to Access & Update: Request raw data extracts or rigorously correct demographic discrepancies within your profile settings interface.
- Right to Erasure (Right to be Forgotten): Submit a formal, verifiable request to our Grievance Officer to completely eradicate your personal record from our active databases, subject to pending financial disputes.
- Marketing Opt-Outs: You may unilaterally unsubscribe from non-critical marketing funnels at any time by clicking on the designated unsubscribe web-link embedded in our promotional emails.
8. Grievance Officer & Official Communications
In strict accordance with the Information Technology Act 2000 and the rules made thereunder, structural inquiries regarding data processing, breaches, or exercise of fundamental data rights must be directed formally to:
Grievance Officer, AbilGulal (Shweta Technologies LLP)Email Direct Line: contact@abilgulal.com
Review Timeline: All formally submitted data grievances are comprehensively analyzed and typically resolved within 30 statutory business days.